Andrew Shortt

Andrew Shortt

Client-Side Encryption and the Cloud: Patterns and Practices
Global Solutions Architect - AWS

Abstract: While AWS and other Cloud Service Providers offer managed solutions for server-side encryption of data at rest, there are scenarios where particularly sensitive data needs to be encrypted before storing it in the cloud or where your application needs to manage the encryption and decryption of that data. The AWS Encryption SDK is a client-side encryption library designed to make it easy for everyone to encrypt and decrypt data using industry standards and best practices. While it is integrated with AWS Key Management Services, the SDK can be used with non-AWS keyrings. This session will describe the architecture of the Encryption SDK and demonstrate several common use cases from our work with large financial services firms.

Andrew Shortt is a Solutions Architect in AWS Global Financial Services. For the last two and a half years Andrew has worked with large global banks and asset managers to transform their business using the AWS Cloud. Before coming to Amazon, Andrew worked in financial services technology roles such as Product Management and Software Development for large global asset managers. Andrew has an undergraduate degree in Information Science and Systems and an MBA from Wake Forest University.